Single Sign-On (SSO) and SAML authentication * Enterprise certificate authorities * Endpoint security platforms * Experience securing Windows Server environments. * Knowledge of security tools used ...
Single Sign-On (SSO) and SAML authentication * Enterprise certificate authorities * Endpoint security platforms * Experience securing Windows Server environments. * Knowledge of security tools used ...
Build authentication and registration journeys using Transmit Journey Orchestration ... Configure OIDC, OAuth 2.0, and SAML flows * Manage identity lifecycle: registration, login, step-up ...
Build authentication and registration journeys using Transmit Journey Orchestration ... Configure OIDC, OAuth 2.0, and SAML flows * Manage identity lifecycle: registration, login, step-up ...
Security Engineer
Paramus, NJ · On-site
... SAML authentication • Experience with Enterprise certificate authorities • Experience with Endpoint security platforms • Experience securing Windows Server environments • Knowledge of ...
Security Engineer
Paramus, NJ · On-site
... SAML authentication • Experience with Enterprise certificate authorities • Experience with Endpoint security platforms • Experience securing Windows Server environments • Knowledge of ...
Lead Engineer - Customer Identity & Authentication (Transmit Security & Apigee)
Atlanta, GA · On-site
... authentication solutions, focusing on passwordless authentication and fraud prevention ... SAML flows • Manage identity lifecycle: registration, login, step-up auth, recovery, consent ...
Lead Engineer - Customer Identity & Authentication (Transmit Security & Apigee)
Atlanta, GA · On-site
... authentication solutions, focusing on passwordless authentication and fraud prevention ... SAML flows • Manage identity lifecycle: registration, login, step-up auth, recovery, consent ...
Develop and maintain integrations utilizing SAML 2.0, OAuth 2.0, OpenID Connect (OIDC), WS-Federation, and PKI-based authentication technologies. * Support onboarding and integration of applications ...
Develop and maintain integrations utilizing SAML 2.0, OAuth 2.0, OpenID Connect (OIDC), WS-Federation, and PKI-based authentication technologies. * Support onboarding and integration of applications ...
Develop and maintain integrations utilizing SAML 2.0, OAuth 2.0, OpenID Connect (OIDC), WS-Federation, and PKI-based authentication technologies. * Support onboarding and integration of applications ...
Develop and maintain integrations utilizing SAML 2.0, OAuth 2.0, OpenID Connect (OIDC), WS-Federation, and PKI-based authentication technologies. * Support onboarding and integration of applications ...
Authentication Engineer
Mountain View, CA · On-site
$135K - $185K/yr
Experience with authentication and identity standards such as OAuth2, OpenID Connect, SAML, or FIDO2/WebAuthn. Experience building or contributing to fraud detection, real-time risk engines, or abuse ...
Authentication Engineer
Mountain View, CA · On-site
$135K - $185K/yr
Experience with authentication and identity standards such as OAuth2, OpenID Connect, SAML, or FIDO2/WebAuthn. Experience building or contributing to fraud detection, real-time risk engines, or abuse ...
Authentication Engineer
Mountain View, CA · On-site
$135K - $185K/yr
Experience with authentication and identity standards such as OAuth2, OpenID Connect, SAML, or FIDO2/WebAuthn. Experience building or contributing to fraud detection, real-time risk engines, or abuse ...
Authentication Engineer
Mountain View, CA · On-site
$135K - $185K/yr
Experience with authentication and identity standards such as OAuth2, OpenID Connect, SAML, or FIDO2/WebAuthn. Experience building or contributing to fraud detection, real-time risk engines, or abuse ...
Ensure SAML authentication is implemented wherever possible. * Administration, monitoring, and optimization of hybrid Windows and Entra AD infrastructure. BitLocker Management: * Implement and manage ...
Quick apply
Ensure SAML authentication is implemented wherever possible. * Administration, monitoring, and optimization of hybrid Windows and Entra AD infrastructure. BitLocker Management: * Implement and manage ...
Authentication Engineer
$115K - $158K/yr
Experience with authentication and identity standards such as OAuth2, OpenID Connect, SAML, or FIDO2/WebAuthn. Experience building or contributing to fraud detection, real-time risk engines, or abuse ...
Authentication Engineer
$115K - $158K/yr
Experience with authentication and identity standards such as OAuth2, OpenID Connect, SAML, or FIDO2/WebAuthn. Experience building or contributing to fraud detection, real-time risk engines, or abuse ...
Senior Amazon Connect Engineer
$60.50 - $78/hr
... SAML authentication. • Familiarity with Terraform, CloudFormation, Git, and CI/CD automation. • Strong analytical, communication, and leadership skills. Preferred Certifications: • AWS ...
Quick apply
Senior Amazon Connect Engineer
$60.50 - $78/hr
... SAML authentication. • Familiarity with Terraform, CloudFormation, Git, and CI/CD automation. • Strong analytical, communication, and leadership skills. Preferred Certifications: • AWS ...
OAuth 2.0, OpenID Connect, FIDO2/WebAuthn, SAML, TOTP. * Experience with API authentication patterns (API keys, OAuth client credentials, mTLS), and with authentication for AI agents, MCP servers, or ...
OAuth 2.0, OpenID Connect, FIDO2/WebAuthn, SAML, TOTP. * Experience with API authentication patterns (API keys, OAuth client credentials, mTLS), and with authentication for AI agents, MCP servers, or ...
Customer Authentication Engineer III
$50 - $53/hr
SAML (Security Assertion Markup Language) * Multi-Factor Authentication (MFA) * Integration with third-party applications * Account onboarding / account opening flows Programming / Development Skills ...
Customer Authentication Engineer III
$50 - $53/hr
SAML (Security Assertion Markup Language) * Multi-Factor Authentication (MFA) * Integration with third-party applications * Account onboarding / account opening flows Programming / Development Skills ...
Lead Identity Authentication Engineer
$104K - $138K/yr
... SAML, SSO, Federated authentication, directory services technologies including LDAP, SCIM, web servers, etc., along with webservices technologies such as REST and SOAP. • Prepare the initial ...
Lead Identity Authentication Engineer
$104K - $138K/yr
... SAML, SSO, Federated authentication, directory services technologies including LDAP, SCIM, web servers, etc., along with webservices technologies such as REST and SOAP. • Prepare the initial ...
... and Authentication Engineer to join our Identity and Access Management team. This role is in ... SAML 2.0, OAuth, and OpenID Connect, including Identity Provider (IdP) and Service Provider (SP ...
... and Authentication Engineer to join our Identity and Access Management team. This role is in ... SAML 2.0, OAuth, and OpenID Connect, including Identity Provider (IdP) and Service Provider (SP ...
Partner with cybersecurity, architecture, and application teams to design and implement conditional access patterns, risk-based access decisions, and modern authentication protocols (e.g., SAML, OIDC ...
Partner with cybersecurity, architecture, and application teams to design and implement conditional access patterns, risk-based access decisions, and modern authentication protocols (e.g., SAML, OIDC ...
Lead Engineer - Identity and Authentication
New York, NY · Remote
$104K - $138K/yr
Proficient in authentication protocols and standards (OAuth2, OIDC, SAML, WebAuthn, FIDO2). * Experience building and scaling identity platforms at fintech companies or security-focused engineering ...
Quick apply
Lead Engineer - Identity and Authentication
New York, NY · Remote
$104K - $138K/yr
Proficient in authentication protocols and standards (OAuth2, OIDC, SAML, WebAuthn, FIDO2). * Experience building and scaling identity platforms at fintech companies or security-focused engineering ...
Partner with cybersecurity, architecture, and application teams to design and implement conditional access patterns, risk-based access decisions, and modern authentication protocols (e.g., SAML, OIDC ...
Quick apply
Partner with cybersecurity, architecture, and application teams to design and implement conditional access patterns, risk-based access decisions, and modern authentication protocols (e.g., SAML, OIDC ...
Partner with cybersecurity, architecture, and application teams to design and implement conditional access patterns, risk-based access decisions, and modern authentication protocols (e.g., SAML, OIDC ...
Partner with cybersecurity, architecture, and application teams to design and implement conditional access patterns, risk-based access decisions, and modern authentication protocols (e.g., SAML, OIDC ...
OAuth 2.0, OpenID Connect, FIDO2/WebAuthn, SAML, TOTP. * Experience with API authentication patterns (API keys, OAuth client credentials, mTLS), and with authentication for AI agents, MCP servers, or ...
Quick apply
OAuth 2.0, OpenID Connect, FIDO2/WebAuthn, SAML, TOTP. * Experience with API authentication patterns (API keys, OAuth client credentials, mTLS), and with authentication for AI agents, MCP servers, or ...
Saml Authentication information

Full-time
Posted 9 days ago
Job description
General Purpose of Job/Summary
The Security Engineer is responsible for protecting the security and integrity of Vornado’s enterprise systems, networks, and data. This role works closely with the Network, Infrastructure, and Service Desk teams to maintain and enhance the company’s overall cybersecurity posture.
The Security Engineer manages and improves the effectiveness of enterprise security technologies including endpoint protection, intrusion prevention, vulnerability management, multi-factor authentication, and network monitoring tools. The role also supports the implementation of security policies, manages access controls, responds to security incidents, and ensures compliance with applicable security standards and audits.
This position plays a key role in identifying emerging threats, implementing preventative controls, and recommending security improvements across the organization.
Key Responsibilities:
Security Architecture & Infrastructure
- Design and maintain the enterprise network security architecture.
- Manage and maintain endpoint security platforms including anti-virus, anti-malware, and intrusion prevention systems.
- Oversee web filtering platforms and produce periodic reporting on usage and compliance.
- Manage deployment of critical operating system and security updates.
- Ensure endpoint compliance using Network Access Control (NAC) technologies.
- Implement and maintain secure remote access solutions including multi-factor authentication.
- Manage PC and server security hardening and system lockdown procedures.
Security Operations & Monitoring
- Monitor and respond to security alerts, vulnerabilities, and malware outbreaks.
- Review and analyze security logs across private and public infrastructure.
- Remediate vulnerabilities identified through vulnerability scanning tools.
- Coordinate vulnerability assessments, penetration testing, and security audits.
- Maintain operational effectiveness of network security appliances and tools.
Access Management & Identity Security
- Manage and periodically review user access to applications, file systems, VPN, internet resources, and Active Directory.
- Support identity and access management technologies including SSO, SAML, and enterprise certificate authorities.
- Enforce least-privilege access and security best practices across the environment.
Security Governance & Compliance
- Develop and maintain IT security policies, standards, procedures, and documentation.
- Assist with compliance initiatives and coordination of required industry audits.
- Provide reporting to management regarding the effectiveness of security controls.
- Recommend new security technologies, tools, and processes to improve the company’s security posture.
- Work with technology vendors and service providers to ensure security architecture, integrations, and operational practices align with company security policies and NIST-aligned cybersecurity standards.
- Participate in third-party risk management activities including security reviews, documentation validation, and remediation coordination with vendors.
Security Awareness & Collaboration
- Collaborate with IT teams to ensure an enterprise-wide approach to security.
- Promote and support information security awareness throughout the organization.
- Stay informed on emerging threats and attacker techniques and recommend countermeasures.
- Ensure security policies, procedures, and technical controls align with recognized cybersecurity frameworks such as the NIST Cybersecurity Framework (CSF) and NIST 800-series guidelines.
Operational Responsibilities
- Monitor and prioritize security-related support tickets.
- Participate in after-hours or weekend support as required.
Job Qualifications:
Technical Skills
- Strong hands-on experience with:
- URL filtering technologies
- Network Access Control (NAC)
- Vulnerability scanning and remediation
- Multi-factor authentication (MFA)
- Experience with:
- Single Sign-On (SSO) and SAML authentication
- Enterprise certificate authorities
- Endpoint security platforms
- Experience securing Windows Server environments.
- Knowledge of security tools used for monitoring, vulnerability management, and threat prevention.
Professional Skills
- Ability to prioritize tasks and work effectively in high-pressure environments.
- Strong analytical, troubleshooting, and problem-solving skills.
- Ability to research and evaluate emerging security technologies.
- Strong communication and collaboration skills.
- Highly organized, detail-oriented, and self-motivated.
- Ability to translate technical requirements into practical security solutions.
Education/Experience:
- Bachelor’s degree in Computer Science, Information Systems, or a related field.
- Minimum 5 years of experience in IT infrastructure, cybersecurity, or related disciplines.
- Experience implementing infrastructure security best practices and procedures.
- Membership in professional security organizations (e.g., ISACA, ISC², ISSA) is a plus.
The starting base salary for this New Jersey based position is expected to be between $110,000 and $130,000 annually. Actual salary will be determined based on skills, experience (to the extent relevant) and other job-related factors, consistent with applicable law.
Vornado Realty Trust is not offering relocation for this position located in our Paramus NJ office
Vornado Realty Trust is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard for race, religion, color, national origin, sex, age, status as a protected veteran, among other things, or status as a qualified individual with disability.